Weintek cMT3000 HMI Web CGI Stack-based Buffer Overflow
Vulnerability Description
In Weintek's cMT3000 HMI Web CGI device, the cgi-bin codesys.cgi contains a stack-based buffer overflow, which could allow an anonymous attacker to hijack control flow and bypass login authentication.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-43492
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Hank Chen (PSIRT and Threat Research of TXOne Networks) reported these vulnerabilities to CISA.
References
More from Weintek
View All →Affected Vendor
Weintek
View all reports →